CVE-2010-2936

EUVD-2010-2940
Integer overflow in simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted polygons in a PowerPoint document that triggers a heap-based buffer overflow.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
Affected Products (NVD)
VendorProductVersion
openofficeopenoffice.org
3.2.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libreoffice
dapper
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
lucid
dne
maverick
dne
openoffice.org
dapper
ignored
hardy
Fixed 1:2.4.1-1ubuntu2.5
released
jaunty
ignored
karmic
Fixed 1:3.1.1-5ubuntu1.3
released
lucid
Fixed 1:3.2.0-7ubuntu4.2
released
maverick
Fixed 1:3.2.1-7ubuntu1.1
released
Common Weakness Enumeration
References